CVE-2007-1736Mozilla Firefox vulnerability

2 documents2 sources
Severity
7.5HIGHNVD
EPSS
0.1%
top 67.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 28
Latest updateMay 1

Description

Mozilla Firefox 2.0.0.3 does not check URLs embedded in (1) object or (2) iframe HTML tags against the phishing site blacklist, which allows remote attackers to bypass phishing protection.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDmozilla/firefox2.0.0.3

🔴Vulnerability Details

1
GHSA
GHSA-gpx3-xw93-vw67: Mozilla Firefox 22022-05-01